| CVE ID | Title | Vendor | Product | Severity | CVSS Score | Published At | AI Analysis |
|---|---|---|---|---|---|---|---|
| CVE-2025-11645 | Tomofun Furbo Mobile App Authentication Token sensitive information | Tomofun | Furbo Mobile App | Low | 2.4 | 2025-10-12 20:32:06 | Deep Dive |
| CVE-2025-61783 | Python Social Auth - Django has unsafe account association | python-social-auth | social-app-django | - | - | 2025-10-09 20:57:21 | Deep Dive |
| CVE-2025-9200 | Blappsta Mobile App Plugin – Your native, mobile iPhone App and Android App <= 0.8.8.8 - Unauthenticated SQL Injection | nebelhorn | Blappsta Mobile App Plugin – Your native, mobile iPhone App and Android App | High | 7.5 | 2025-10-03 11:17:17 | Deep Dive |
| CVE-2025-59835 | LangBot has a cross-directory file upload vulnerability, which could lead to system takeover | langbot-app | LangBot | - | - | 2025-10-02 18:59:43 | Deep Dive |
| CVE-2025-23297 | NVIDIA App 安全漏洞 | NVIDIA | NVIDIA App | High | 7.8 | 2025-10-01 21:19:44 | Deep Dive |
| CVE-2025-10722 | SKTLab Mukbee App com.dw.android.mukbee AndroidManifest.xml improper export of android application components | SKTLab | Mukbee App | Medium | 5.3 | 2025-09-19 17:32:10 | Deep Dive |
| CVE-2025-10721 | Webull Investing & Trading App AndroidManifest.xml improper export of android application components | Webull | Investing & Trading App | Medium | 5.3 | 2025-09-19 17:32:07 | Deep Dive |
| CVE-2025-10718 | Ooma Office Business Phone App com.ooma.office2 improper export of android application components | Ooma | Office Business Phone App | Medium | 5.3 | 2025-09-19 16:02:07 | Deep Dive |
| CVE-2025-10717 | intsig CamScanner App com.intsig.camscanner AndroidManifest.xml improper export of android application components | intsig | CamScanner App | Medium | 5.3 | 2025-09-19 14:32:09 | Deep Dive |
| CVE-2025-10716 | Creality Cloud App com.cxsw.sdprinter AndroidManifest.xml improper export of android application components | Creality | Cloud App | Medium | 5.3 | 2025-09-19 14:32:06 | Deep Dive |
| CVE-2025-10715 | APEUni PTE Exam Practice App com.ape_edication AndroidManifest.xml improper export of android application components | APEUni | PTE Exam Practice App | Medium | 5.3 | 2025-09-19 13:32:08 | Deep Dive |
| CVE-2025-0879 | XSS in Shopside Software's Shopside App | Shopside Software | Shopside App | Medium | 4.7 | 2025-09-17 12:32:43 | Deep Dive |
| CVE-2025-7355 | IDOR in Beefull Energy Technologies' Beefull App | Beefull Energy Technologies | Beefull App | Medium | 6.5 | 2025-09-16 12:49:42 | Deep Dive |
| CVE-2025-10364 | Unauthenticated Arbitrary Command Injection in Evertz SDVN | Evertz | 3080ipx-10G | 中危 | - | 2025-09-12 13:48:19 | Deep Dive |
| CVE-2025-10365 | Authentication Bypass in Evertz SDVN | Evertz | 3080ipx-10G | 中危 | - | 2025-09-12 13:46:12 | Deep Dive |
| CVE-2025-58781 | WTW-EAGLE App 信任管理问题漏洞 | Wireless Tsukamoto Co., Ltd. | WTW-EAGLE App for iOS | 中危 | - | 2025-09-12 05:50:51 | Deep Dive |
| CVE-2025-10195 | Seismic App com.seismic.doccenter AndroidManifest.xml improper export of android application components | - | Seismic App | Medium | 5.3 | 2025-09-10 00:02:06 | Deep Dive |
| CVE-2025-5500 | ZhenShi Mibro Fit App com.xiaoxun.xunoversea.mibrofit AndroidManifest.xml improper export of android application components | ZhenShi | Mibro Fit App | Medium | 5.3 | 2025-09-09 16:32:08 | Deep Dive |
| CVE-2025-42923 | Cross-Site Request Forgery (CSRF) vulnerability in SAP Fiori App (F4044 Manage Work Center Groups) | SAP_SE | SAP Fiori App (F4044 Manage Work Center Groups) | Medium | 4.3 | 2025-09-09 02:09:48 | Deep Dive |
| CVE-2025-42915 | Missing Authorization Check in Fiori app (Manage Payment Blocks) | SAP_SE | Fiori app (Manage Payment Blocks) | Medium | 5.4 | 2025-09-09 02:06:33 | Deep Dive |